Free 312-49 Exam Braindumps (page: 20)

Page 19 of 133

Bob has been trying to penetrate a remote production system for the past two weeks. This time however, he is able to get into the system. He was able to use the System for a period of three weeks. However, law enforcement agencies were recoding his every activity and this was later presented as evidence. The organization had used a Virtual Environment to trap Bob. What is a Virtual Environment?

  1. A Honeypot that traps hackers
  2. A system Using Trojaned commands
  3. An environment set up after the user logs in
  4. An environment set up before a user logs in

Answer(s): A



To make sure the evidence you recover and analyze with computer forensics software can be admitted in court, you must test and validate the software. What group is actively providing tools and creating procedures for testing and validating computer forensics software?

  1. Computer Forensics Tools and Validation Committee (CFTVC)
  2. Association of Computer Forensics Software Manufactures (ACFSM)
  3. National Institute of Standards and Technology (NIST)
  4. Society for Valid Forensics Tools and Testing (SVFTT)

Answer(s): C



With Regard to using an Antivirus scanner during a computer forensics investigation, You should:

  1. Scan the suspect hard drive before beginning an investigation
  2. Never run a scan on your forensics workstation because it could change your systems configuration
  3. Scan your forensics workstation at intervals of no more than once every five minutes during an investigation
  4. Scan your Forensics workstation before beginning an investigation

Answer(s): D



Windows identifies which application to open a file with by examining which of the following?

  1. The File extension
  2. The file attributes
  3. The file Signature at the end of the file
  4. The file signature at the beginning of the file

Answer(s): A






Post your Comments and Discuss EC-Council 312-49 exam with other Community members:

312-49 Discussions & Posts